Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo ych.com

Group: madliberator

Discovered by ransomware.live: 2024-09-04

Estimated attack date: 2024-09-04

Country: US

Description:

Founded in 1955 by the late Mr Yap Chwee Hock, YCH began as a modest passenger transportation company. However, in the 1970s, the family business lost its main contract. With the need to diversify the business, Mr Yap Chwee Hock roped in his eldest son,


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 9

Compromised Users: 95

Third Party Employee Credentials: 35


External Attack Surface: 79



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations web.com
MX Records
  • ych-com.mail.protection.outlook.com.
TXT Records
  • v=spf1 include:spf.protection.outlook.com include:_spf.createsend.com ip4:203.126.53.77 ip4:203.126.53.118 ip4:202.55.84.87 -all
  • _globalsign-domain-verification=_vV9wTvoKFPRZgE8J9sgC3Bu54-ytBwi-S0Kr2nv12
  • MS=ms25341456
Cloud / SaaS Services Detected
Microsoft 365

Leak Screenshot:

Leak Screenshot